CVE-2020-27150: Moxa Nport IA5150A Firmware
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
In multiple versions of NPort IA5000A Series, the result of exporting a device’s configuration contains the passwords of all users on the system and other sensitive data in the original form if “Pre-shared key” doesn’t set.
Affected products
- Moxa Nport IA5150A Firmware: up to and including 1.4
- Moxa Nport IA5250A Firmware: up to and including 1.4
- Moxa Nport IA5450A Firmware: up to and including 1.7
Published 2021-05-14. Last modified 2026-06-17.